if the lists ever differ. I don't remember how they
-> merge
-> (or don't). Probably best to put it in one place.
->
-> -Original Message-
-> From: [EMAIL PROTECTED]
-> [mailto:[EMAIL PROTECTED] On Behalf Of Bruyere,
Michel
-> Sent: Saturday, January 06
Thanks, I have both, so I replicated the settings in both places. Do you
think this can cause me problems?
-> -Original Message-
-> From: [EMAIL PROTECTED] [mailto:ActiveDir-
-> [EMAIL PROTECTED] On Behalf Of Darren Mar-Elia
-> Sent: January 5, 2007 6:05 PM
-> To: ActiveDir@mail.active
Thanks for refreshing my memory!!
It was a tough day, been at the office overnight, so memory doesn't
serve well in theses conditions, hehehe.
-> -Original Message-
-> From: [EMAIL PROTECTED] [mailto:ActiveDir-
-> [EMAIL PROTECTED] On Behalf Of Kennedy, Jim
-> Sent: January 5, 2007 3:56
Edward E. Ziots
-> Network Engineer
-> Lifespan Organization
-> MCSE,MCSA,MCP+I,M.E,CCA,Network+, Security +
-> email:[EMAIL PROTECTED]
-> cell:401-639-3505
->
-> -Original Message-
-> From: [EMAIL PROTECTED]
-> [mailto:[EMAIL PROTECTED] On Behalf Of Bruyere,
Michel
-&g
Hi,
I have a brain cramp actually, I can't remember how I can push a
URL in the trusted zone and intranet zone for all the stations using a
GPO, anybody can help?
Thanks
<>
Hi,
Last time i had this, I had to pin point the culprit by removing
all the items and then re add them 1 by 1 synching between each item. It
turned out to be a note that was "corrupted" I deleted it and then re
added the notes to the sync and all went well after that.
My 0.02$
(also, m
You may want to take a look at ADmodify.net
http://www.gotdotnet.com/workspaces/workspace.aspx?id=f5cbbfa9-e46b-4a7a-8ed8-3e44523f32e2
Nice tools for batch AD modifs.
From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Ramon Linan
Sent: Friday, August 25, 2006
plates\Control Panel\Regional and Language
Options
Tony
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]
On Behalf Of Bruyere, Michel
Sent: Friday, 2 June 2006 8:34 a.m.
To: ActiveDir@mail.activedir.org
Subject: [ActiveDir] setting the regional settings with GPO or
d prevent users from changing the
regional settings in Control Panel using the following setting:
USER\Administrative Templates\Control Panel\Regional and Language
Options
Tony
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
Sent: Friday, 2
Hi,
I would like to restrict the users from changing the regionals
settings on their laptops. Also I would like to push the configuration
as to date format and number decimals value and such.
Anyone has a way to do that centrally?
Thanks!
Note: I'm googling for it right now, sorry if th
I followed the MS recommendation to delete
and recreate the IMAP account; it didn't work in the first time but worked the
second one.
It's the only resolution that I found.
My 0.02$
From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Milton Sancho
Sent: Wedn
Hi,
I got something similar but
with a PDF file. The solution was to reboot the server…
From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Tom Kern
Sent: Thursday, April 06, 2006
9:18 AM
To: ActiveDir@mail.activedir.org
Subject: Re: [ActiveDir]
Robo
ates your real AD Domain in a test lab with no SID issues.
>
> Thanks a lot to Chris Wall ([EMAIL PROTECTED]) who made
the
> information available on the ExhcangeList with the same thread
"Duplicate
> your AD domain with this new (free) tool".
>
> Cheers,
>
> Y
Ouf... I meant LDIFDE...
> Hi,
> Can someone help me out a bit with this one...
> I would like to use the LDEFIDE command to export from our LAN and
> import it in our test lab. I'm able to export users and OUs, but
can't
> seem to find out how to export groups (and all the memberships
Hi,
Can someone help me out a bit with this one...
I would like to use the LDEFIDE command to export from our LAN and
import it in our test lab. I'm able to export users and OUs, but can't
seem to find out how to export groups (and all the memberships).
If someone has an idea how to
Hi,
What I do when I exmerge is that I set the
Administrative account "full mailbox access". The account must be
enabled and the "hide from exchange address book" unchecked.
Note that it takes some time to replicate the changes. Log
in as administrative account to exmerge.
Bit OT: ports needed to authenticate
>
> Bruyere, Michel wrote:
> > Hi,
> > Can someone tell me the ports that I need to open for a server
> > behind a firewall to authenticate to the DCs.
> >
> > It's a secured space but it need to be on another interface of a PI
Hi,
Can someone tell me the ports that I need to open for a server
behind a firewall to authenticate to the DCs.
It's a secured space but it need to be on another interface of a PIX
(call it secure DMZ if you want). I know that it's not the best
configuration, but I need to make it work.
quot;
>
> I would be interested about your resolution :)
>
> Thank u for input and have a nice day.
>
> Yann
>
> -Message d'origine-
> De : [EMAIL PROTECTED] [mailto:ActiveDir-
> [EMAIL PROTECTED] De la part de Bruyere, Michel
> Envoyé : mer
nal Message-
> |From: [EMAIL PROTECTED]
> |[mailto:[EMAIL PROTECTED] On Behalf Of
> |Bruyere, Michel
> |Sent: Wednesday, October 26, 2005 12:48 AM
> |To: ActiveDir@mail.activedir.org
> |Subject: [ActiveDir] script to check the "inheritance" from
> |the security Tab...
Hi,
I would like to make sure that all the following check boxe is
checked:
Inherit from parent the permissions entries that apply to child object.
I would like to do this as a batch job, without having to go manually to
each user objects.
Anyone has an idea on scripts or tools (freewa
an a problem of the policy not responding the
way you expect.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
Sent: Monday, September 19, 2005 1:20 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] only 1 GPO not applying...
Hi
ECTED] On Behalf Of Bruyere, Michel
Sent: Monday, September 19, 2005 3:46 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] only 1 GPO not applying...
Hi,
I found that only computer policies applies ;/
The user only policy do not apply, still searching but will appreciate
any input
No, its only XP SP2 adm settings, there is only one object push IE
config.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Mark Parris
Sent: September 19, 2005 5:14 PM
To: ActiveDir.org
Subject: Re: [ActiveDir] only 1 GPO not applying...
Are you deployin
olicy object and the right to apply the policy object.
FWIW - Frank
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
Sent: Monday, September 19, 2005 4:20 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] only 1 GPO not applying..
ated Users ACE you need to replace
that with a user group that contains all the users you wish to receive
that GPO.
Darren
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
Sent: Monday, September 19, 2005 12:46 PM
To: ActiveDir@mail.activedir.o
Hi,
Look within quotes...
>Are you applying the policy to an OU that does not have "users"? If so
>that is why the GPO is not applying. You would need to do a loopback
>processing option for this.
Nope, there are user's accounts in the OU. The AD OUs are defined with
some OUs for us
lf Of Bruyere, Michel
Sent: September 19, 2005 2:04 PM
To: ActiveDir@mail.activedir.org
Subject: [ActiveDir] only 1 GPO not applying...
Hi,
I have a little problem applying a GPO.
SETUP: windows 2k native domain with XPsp2 ADM files. All stations are
WinXP sp2.
I had a GPO the pushed a screen
uot;Always wait for the network at computer
startup and logon"? it is in computer configuration>administrative
templates>system>logon.
Dan DeStefano
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
Sent: Monday, Septe
Hi,
I have a little problem applying a GPO.
SETUP: windows 2k native domain with XPsp2 ADM files. All stations are
WinXP sp2.
I had a GPO the pushed a screen saver configuration and some other
restrictions. I had to split the GPO in 2 because I needed to deploy the
Screensaver without t
2:51 PM
À : ActiveDir@mail.activedir.org
Objet : RE: [ActiveDir] OT:
Change ownership
I only want to replace the owner on
files/folders for a specific user, not all of them.
From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Bruyere,
Michel
Sent: Monday, August 08, 20
Title: DC "replicating" with deleted DSA object
Right click on the folder then properties
Go in security tab and click advanced
In there click on the “owner”
tab and then select/add the owner you want
Check the box that says “replace owner
on subcontainers and object”
You’re done
Hi,
I kept it when posted... here it is
Forest wide DSRM password reset script / Dean Wells / MSEtechnology / Jun. 2005
Thanks Dean for the tool BTW.
> -Message d'origine-
> De : [EMAIL PROTECTED] [mailto:ActiveDir-
> [EMAIL PROTECTED] De la part de Hunter, Laura E.
> Envoy
May look strange but are you running McAfee 8.0i??
Got someone that had something similar and the TDI driver of VS8 was the
culprit...
> -Message d'origine-
> De : [EMAIL PROTECTED] [mailto:ActiveDir-
> [EMAIL PROTECTED] De la part de vex
> Envoyé : Friday, July 29, 2005 4:15 PM
> À
Just go in the tools menu and you'll have an option that say "share the
spreadsheet" or something like that. Sorry if I don't have the exact wording,
my excel is in French so I have to "translate" it.
Hope this help.
> -Message d'origine-
> De : [EMAIL PROTECTED] [mailto:ActiveDir-
’ for
the techs. Save this.
If you don’t have a clear idea on
how to proceed, reply back. I’ll send or post detailed instructions
with pictures, if necessary, on how to do exactly what you want.
-rtk
From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Bruyere,
Michel
missing?
Thanks
De :
TIROA YANN [mailto:[EMAIL PROTECTED] De la part de TIROA YANN
Envoyé : Tuesday, May 17,
2005 2:23 PM
À : ActiveDir@mail.activedir.org;
Bruyere, Michel
Objet : RE : [ActiveDir]
delegation not working on Win2k AD
Hello ;-)
If You
want to
Hi,
I used the delegation wizard to delegate the "join computer to
the domain" task to the technicians group. Everything worked fine until
today. For no apparent reasons, it gives an access denied to the
technicians group members when they try to join a computer to the
domain. Nothing has
n.microsoft.com/library/default.asp?url=/library/en-
> us/adsi/adsi/a
> ds_user_flag_enum.asp.
>
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
> Sent: Tuesday, May 10, 2005 11:13 AM
> To: ActiveDir@mail.activedir
Thanks everyone for the inputs. I used the delegation wizard but it
wasn't allowing to "re-enable" disabled account. So I decided to do that
the hard way. Actually it's fixed, seems that I was just too in a hurry.
This morning everything was working fine and I didn't change anyhting.
So it was like
Hi,
I delegated the password management to the technicians group.
There is a glitch though, they can't seem to be able to reset password
even if I gave the permission to do so (on the OU). All the get is
Access denied (and the check box to set the "change password a next
logon" bit is gray
What does GPresult return?
De :
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] De la part de Christine Allen
Envoyé : Thursday, April 28, 2005 11:35 AM
À :
'ActiveDir@mail.activedir.org'
Objet : [ActiveDir] Group
Policy Not working
Hello,
My environment is win
Well,
This is the weirdest thing I ever seen. I did another "profile
reset" and it fixed it. I did it once already and the problem was still
there. Yesterday I thought that I would retry that and guest what, it
worked!
Well thanks for all the help you guys provided!
List info : http:/
> DNS
> > server? I found this happening on a system and it was cause it
> couldn't
> > find the Domain Controller properly. Not sure if that is your problem
> > per se but its definitely worth a look.
> >
> >
> > Jeff
> >
> >
> > ---
I’m not sure that it’s what
you want to do, but…
http://support.microsoft.com/default.aspx?scid=kb;en-us;285136&Product=exch2k
From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Brenda Casey
Sent: Tuesday, April 19, 2005 4:03
PM
To: ActiveDir@mail.activedir.org
Subj
a system and it was cause it couldn't
> find the Domain Controller properly. Not sure if that is your problem
> per se but its definitely worth a look.
>
>
> Jeff
>
>
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] On Behalf O
Hi,
I have 2 laptops that have the same problem.
They are very slow to logon the domain and they generates the following
events:
Event Type: Error
Event Source: Userenv
Event Category: None
Event ID: 1030
Date: 4/22/2005
Time: 3:55:08 PM
User: Do
Hi,
I'm just looking to upgrade our domain controllers from 2k to
2k3. I actually have a 2k with exchange 2k that need to be upgraded to
2k3 and Exchange 2k3.
Should I upgrade the exchange system before doing the DCs?
Anyone have any docs with pros and cons? What is better or would ca
Hi all,
Thanks everyone for your inputs! The solution is now adopted.
I'll go with your suggestions, temporarily I'll pre-create the objects
in AD until I upgrade to Win2k3 (soon) and then ill use the Redircomp
command.
Keep up the good work!
List info : http://www.activedir.org/L
the long run pre-creation actually saves time and
> energy.
>
> David Aragon
>
> > -Original Message-
> > From: [EMAIL PROTECTED]
> > [mailto:[EMAIL PROTECTED] On Behalf Of
> > Bruyere, Michel
> > Sent: Wednesday, April 13, 2005 8:31 AM
> >
d computer
> accounts are created so you can more easily scope GPOs directly to
> newly created user and computer objects.
>
> This article describes it's use:
>
> http://support.microsoft.com/default.aspx?scid=kb;en-us;324949
>
> I hope that helps
>
> Thanks
Hi,
I have a little question as to how you guys would handle this
situation...
I have 2 techs that are adding stations to the domain from time to time.
When they join the stations to the domain, the computer account is
created in the COMPUTERS built-in UO.
I have many UOs that are us
OMG, I hope he's not oing BLB's, That's the worst thing I ever tried ;/
> -Message d'origine-
> De : [EMAIL PROTECTED] [mailto:ActiveDir-
> [EMAIL PROTECTED] De la part de Medeiros, Jose
> Envoyé : Tuesday, April 12, 2005 3:35 PM
> À : ActiveDir@mail.activedir.org
> Objet : RE: [ActiveDir
I'm using Veritas 9.1 actually but it's almost the same as 10.0, with the
exchange agent. You can contact me off list; I may be able to help you out a
bit
> -Message d'origine-
> De : [EMAIL PROTECTED] [mailto:ActiveDir-
> [EMAIL PROTECTED] De la part de Douglas M. Long
> Envoyé : Tues
Hi,
I'm still not exactly sure of what you're saying but if I understand
correctly, you have "old" logs stored on a "file server". These logs are coming
from a time where there was no "exchange backups", so they were building up
eating disk space.
If this is right, having a good backup
Hi,
> So lets say I get the backup software working correctly (Duh, I forgot
> to turn on the open file option)...will I ever need the transaction
logs
> from say January of this year? The reason I ask is because for now I
> have just moved all logs older than February to another machine to
f
You're right, I meant UNLOCKING accounts not enabling them! As for the
lockout time... it is available in 2k too.
De :
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] De la part de joe
Envoyé : Tuesday, March 22,
2005 3:13 PM
À :
ActiveDir@mail.activedir.org
Objet : RE: [Active
gt; -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
> Sent: 22 mars 2005 14:45
> To: ActiveDir@mail.activedir.org
> Subject: RE: [ActiveDir] Ad delegation
>
> Solved...
>
>
> > I would like to delegate
Solved...
> I would like to delegate 3 actions to the technicians in the AD. The 2
> first are easy to set, the third is the one that cause me a problem.
>
> 1- reset the users password
> 2- set the "must change password at next logon"
> 3- enable account that was disabled due to the password p
Hi,
It's me again. I have another problem ;)
I would like to delegate 3 actions to the technicians in the AD. The 2
first are easy to set, the third is the one that cause me a problem.
1- reset the users password
2- set the "must change password at next logon"
3- enable account that w
sysprosoft.com/index.php?ref=activedir&f=adm_summary.shtml
> Policy Log Reporter(Free)
> http://www.sysprosoft.com/index.php?ref=activedir&f=policyreporter.shtml
>
>
> - Original Message -
> From: "Bruyere, Michel" <[EMAIL PROTECTED]>
> To:
&
Hi,
After testing things out with the loopback i still can't do
something and i'm wondering if it posible to do it.
With the loopback it's possible to make a user defined policy on a
computer basis, but is it possible to make a computer defined policy on
a user basis?
What I wanna do is
emplates\System\Group Policy\User
> Group Policy loopback processing mode
>
>
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
> Sent: Monday, March 14, 2005 3:16 PM
> To: ActiveDir@mail.activedir.org
> Subj
Hi,
I've been asked to do something quite unusual (for me though).
I want to make GPOs from the Computer administrative templates apply to
Users.
I don't know if it's possible to do such thing, but I tried it and here
is the result I got.
COMPUTER SETTINGS
--
Appli
gt; able
> to just eliminate that policy, if that's the case.
>
> John
>
>
>
>
>
> "Bruyere, Michel"
> <[EMAIL PROTECTED]
> ada.com> To
>
Hi,
I'm actually facing a strange problem... I can't seem to make 2
policies apply simultaneously.
Here is the configuration:
Domain
- Users_ou1
- Users_ou2
- Users_ou3
- Users_ou4
- Users_ou5
- Users_ou1
- Computers_ou1
-
À : [EMAIL PROTECTED]
> Objet : Re: [ActiveDir] GPO question
>
> On Mon, 6 Dec 2004 14:46:38 -0500, Bruyere, Michel wrote
> > Hi,
> > I would like to know if its possible for a Win2k Sp4 to push
> > GPOs of WinXP sp2. I've found a list of all XPsp2 gpos on th
Hi,
I would like to know if its possible for a Win2k Sp4 to push
GPOs of WinXP sp2. I've found a list of all XPsp2 gpos on the MS site
and I want to push some of them. I did take the .adm from a XPsp2 and I
added them to the Win 2k server. The problem is that I get a whole lot
of messages:
Hi,
Does some know if there is an impact on DCs, GPOs, DNS and AD if
I change the net mask? (just the net mask, not the ip)
I have to change the net mask on an entire network to allow more IPs to
be allocated. I actually did some tests in a test lab and I got no
problems but I wanted to g
Hi,
Thanks for the information... that's exactly the type of tool I was looking
for... I didn't know that MS had such a tool.
Many thanks!
M.Bruyere
> -Message d'origine-
> De : [EMAIL PROTECTED] [mailto:ActiveDir-
> [EMAIL PROTECTED] De la part de
> [EMAIL PROTECTED]
> Envoyé
Hi,
I would like to know what would be the best way to export and
reimport users and group from a DC to another. The source DC is the one
that is in our LAN and the second one is in a test lab. They both must
have the same accounts and groups but, they are not connected in any way
and the
Hi,
I'M actually searching for a program that could create reports
based on the structure of our AD. There are some nested groups and I
would like to get the global view of my AD using some kind of reports.
The preferred output would be to have something like arborescence, where
I could se
My first thought would be something like roaming profile... You create the shortcut on
the desktop and it will follow the user on any computer he logs on.
I'm not sure that I really understood what you really wanted to achieve tough.
M. Bruyere
Network/systems administrator
CompTIA A+, Network+
rosoft.com/downloads/details.aspx?FamilyID=ef3a35c0-19b9-4acc-
b5be-9b7dab13108e&displaylang=en
(watch the URL wrapping)
-Original Message-----
From: Bruyere, Michel [mailto:[EMAIL PROTECTED]
Sent: Tuesday, August 31, 2004 10:05 AM
To: [EMAIL PROTECTED]
Subject: RE: [ActiveDir] printing GPO listi
MC, go down to Forest->Domains->domain->Group Policy Objects
That will show all of the Group Policy Objects that exist in your domain,
whether they are linked/enabled or not. If you have any Site-defined GPOs,
they will be under Forest->Sites
Hunter
-Original Message-
From: Bruye
Expert
Expert Zone - www.microsoft.com/windowsxp/expertzone
WebLog - www.msmvps.com/willhack4food
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
Sent: Tuesday, August 31, 2004 7:34 AM
To: [EMAIL PROTECTED]
Subject: [ActiveDir] printing GPO
Windows Server / Rights Management
Windows Security (Affiliate)
Associate Expert
Expert Zone - www.microsoft.com/windowsxp/expertzone
WebLog - www.msmvps.com/willhack4food
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bruyere, Michel
Sent: Tuesday, August 31, 2
Hi,
I've been asked to print, for documentation purpose, the list of
all GPO's and their settings. I did a search to find something on the MS
site but all that I found was a XLS file listing the GPO's from w2k3 (we
are still on w2k).
You guys have any 3rd parties of idea on how I can achi
oup is missing, then another GPO is overriding that setting.
-Original Message-
From: Bruyere, Michel [mailto:[EMAIL PROTECTED]
Sent: Wednesday, June 09, 2004 11:19 AM
To: [EMAIL PROTECTED]
Subject: RE: [ActiveDir] strange thing...
Hi,
This user right has been set into the Default
saying ... when you first
designate the rights that members of the technician group can add wks to
the domain and the next day they cannot?
Are the rights still set on the next day as you defined them on the
first day? Or are the reverting back?
-Original Message-
From: Bruyere, Michel
rs of the technician group can add wks to
the domain and the next day they cannot?
Are the rights still set on the next day as you defined them on the
first day? Or are the reverting back?
-Original Message-
From: Bruyere, Michel [mailto:[EMAIL PROTECTED]
Sent: 09 June 2004 15:37
To: [EMAI
Hi all,
It's my first post here. I've been referred here and
been told that you guys were the "real gurus" of AD. I have a strange
thing happening and I would like to have your thoughts about it.
Here is the situation, I created a group called "technicians" and I gave
the
user ri
82 matches
Mail list logo